Show filters
345 Total Results
Displaying 21-30 of 345
Sort by:
Attacker Value
Unknown

CVE-2023-6181

Disclosure Date: December 11, 2023 (last updated December 14, 2023)
An oversight in BCB handling of reboot reason that allows for persistent code execution
Attacker Value
Unknown

CVE-2023-48425

Disclosure Date: December 11, 2023 (last updated December 14, 2023)
U-Boot vulnerability resulting in persistent Code Execution 
Attacker Value
Unknown

CVE-2023-48424

Disclosure Date: December 11, 2023 (last updated December 14, 2023)
U-Boot shell vulnerability resulting in Privilege escalation in a production device
Attacker Value
Unknown

CVE-2023-48417

Disclosure Date: December 11, 2023 (last updated December 14, 2023)
Missing Permission checks resulting in unauthorized access and Manipulation in KeyChainActivity Application
Attacker Value
Unknown

CVE-2023-33413

Disclosure Date: December 07, 2023 (last updated December 14, 2023)
The configuration functionality in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions through 3.17.02, allows remote authenticated users to execute arbitrary commands.
Attacker Value
Unknown

CVE-2023-33412

Disclosure Date: December 07, 2023 (last updated December 14, 2023)
The web interface in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions before 3.17.02, allows remote authenticated users to execute arbitrary commands via a crafted request targeting vulnerable cgi endpoints.
Attacker Value
Unknown

CVE-2023-33411

Disclosure Date: December 07, 2023 (last updated December 13, 2023)
A web server in the Intelligent Platform Management Interface (IPMI) baseboard management controller (BMC) implementation on Supermicro X11 and M11 based devices, with firmware versions up to 3.17.02, allows remote unauthenticated users to perform directory traversal, potentially disclosing sensitive information.
Attacker Value
Unknown

CVE-2023-42770

Disclosure Date: November 21, 2023 (last updated November 30, 2023)
Red Lion SixTRAK and VersaTRAK Series RTUs with authenticated users enabled (UDR-A) any Sixnet UDR message will meet an authentication challenge over UDP/IP. When the same message is received over TCP/IP the RTU will simply accept the message with no authentication challenge.
Attacker Value
Unknown

CVE-2023-40151

Disclosure Date: November 21, 2023 (last updated November 30, 2023)
When user authentication is not enabled the shell can execute commands with the highest privileges. Red Lion SixTRAK and VersaTRAK Series RTUs with authenticated users enabled (UDR-A) any Sixnet UDR message will meet an authentication challenge over UDP/IP. When the same message comes over TCP/IP the RTU will simply accept the message with no authentication challenge.
Attacker Value
Unknown

CVE-2023-40540

Disclosure Date: November 14, 2023 (last updated November 23, 2023)
Non-Transparent Sharing of Microarchitectural Resources in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable information disclosure via local access.